Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Comment: Edited by NavBot

...

Wiki Markup
\[[Sterbenz 06|AA. Java References#Sterbenz 06]\] 
\[[MITRE 09|AA. Java References#MITRE 09]\] [CWE ID 302|http://cwe.mitre.org/data/definitions/302.html] "Authentication Bypass by Assumed-Immutable Data"

...

SEC03SEC08-J. Do not allow tainted variables in doPrivileged blocksEnforce security checks in code that performs sensitive operations      02. Platform Security (SEC)      SEC08SEC10-J. Enforce security checks in code that performs sensitive operationsDefine custom security permissions for fine grained security